Arris produces a modestly sized line of residential and small-business networking appliances and firmware, including wireless access points and broadband routers such as the SBR series and VAP2500, that are widely distributed across consumer and ISP deployments. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the appeal of internet-exposed home-networking devices for remote compromise and botnet recruitment. The exposure recurs across product lines through weakness classes centered on OS command injection, cross-site request forgery, cross-site scripting, and sensitive information disclosure—attack vectors endemic to web-managed embedded devices with limited input validation and session security. Defenders should inventory affected appliances, restrict management access from untrusted networks, and prioritize firmware updates for these widely distributed gateway devices. Current exploitation activity and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Arris over time
Signals from CVEs in this vendor scope (27 CVEs).
27 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-8423HIGH Unspecified vulnerability in the management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to execute arbitrary commands via unknown vectors. | Nov 28, 2014 | 10.0 | 76 | NO | YES |
CVE-2014-8424HIGH ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication. | Nov 28, 2014 | 7.8 | 70 | NO | YES |
CVE-2022-31793HIGH do_request in request.c in muhttpd before 1.1.7 allows remote attackers to read arbitrary files by constructing a URL with a single character before a desired path on the filesyste | Aug 4, 2022 | 7.5 | 42 | NO | YES |
CVE-2022-26994CRITICAL Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the pptp function via the pptpU | Mar 15, 2022 | 9.8 | 31 | NO | NO |
CVE-2022-26993CRITICAL Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the pppoe function via the pppo | Mar 15, 2022 | 9.8 | 31 | NO | NO |
CVE-2018-20383CRITICAL ARRIS DG950A 7.10.145 and DG950S 7.10.145.EURO devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 | Dec 23, 2018 | 9.8 | 31 | NO | NO |
CVE-2022-26992CRITICAL Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the ddns function via the DdnsU | Mar 15, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-26991CRITICAL Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the ntp function via the TimeZo | Mar 15, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-26990CRITICAL Arris routers SBR-AC1900P 1.0.7-B05, SBR-AC3200P 1.0.7-B05 and SBR-AC1200P 1.0.5-B05 were discovered to contain a command injection vulnerability in the firewall-local log function | Mar 15, 2022 | 9.8 | 30 | NO | NO |
CVE-2014-8425HIGH The management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to obtain credentials by reading the configuration files. | Nov 28, 2014 | 7.8 | 30 | NO | YES |
Signals from CVEs in this vendor scope (27 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Arris.
Media articles that mention a CVE ID that affects a product developed by Arris — matched by CVE ID, not by vendor name.